Skip to content
Noroxi

scponly records

5 published records for vendor scponly.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
60%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    5 records
    • CVE-2007-6350
      35Monitor

      scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute code by invoking dangerous subcommands

      HighCVSS 8.5No exploitEPSS 4%

      scponly · scponlyDec 14, 2007

    • CVE-2002-1469
      31Monitor

      scponly does not properly verify the path when finding the (1) scp or (2) sftp-server programs, which could allow remote authenticated users

      HighCVSS 7.5Proof of conceptEPSS 3%

      scponly · scponlyApr 22, 2003

    • CVE-2004-1162
      31Monitor

      The unison command in scponly before 4.0 does not properly restrict programs that can be run, which could allow remote authenticated users t

      HighCVSS 7.5No exploitEPSS 2%

      scponly · scponlyJan 10, 2005

    • CVE-2005-4533
      30Monitor

      Argument injection vulnerability in scponlyc in scponly 4.1 and earlier, when both scp and rsync compatibility are enabled, allows local use

      HighCVSS 7.5No exploitEPSS 1%

      scponly · scponlyDec 27, 2005

    • CVE-2005-4532
      28Monitor

      scponlyc in scponly 4.1 and earlier, when the operating system supports LD_PRELOAD mechanisms, allows local users to execute arbitrary code

      HighCVSS 7.2No exploitEPSS 0%

      scponly · scponlyDec 27, 2005